OSCP / CISSP / OSAI?
Looking for opinions on which cert training to take on next. My employer will be paying for my training. I have ~3 years of exp, have basic certs like SC300, CySA+, ISACA CRISC.
I work as a Security Engineer, pentesting is not something I might pursue full time, however, I want the OSCP for resume filter along with developing the “attacker mindset”. (I know there are other ways to do this like HTB, but I’d rather do the OSCP)
For CISSP since I have 3 YOE, I still need a year for it to be valid. Does it make sense getting it out of the way earlier?
For OSAI, I would treat it as a structured research path, mainly to build a better understanding. Also it would be something new and interesting since the other certs/trainings overlap with things I’ve learned in the past.
What would y’all think makes the most sense